# Security LeadLead security reviews, threat modelling, external testing, report handling and launch sign-off.All open rolesApplyAbout the role## What this role does.EvaEsi is a whole new model line, built on the research from Forlais. It is a significant launch, and you can help shape it.You will lead security for the platform. That means security reviews, threat modelling, external testing, handling reports and giving the sign-off before launch.We take security seriously and the role comes with the standing to act on what you find.What we look for## Qualifications.* Application security experience on real production systems.* Comfortable being the single accountable lead rather than one voice in a large team.* Practical about risk: fix what matters first, keep track of the rest.* Bring an open mind and genuine readiness for a learning curve.* Are results oriented and comfortable taking responsibility for outcomes.* Are willing to adapt and try new ideas.Bonus## Nice to have.* Authentication and identity systems: OAuth2/OIDC, sessions, passkeys and API keys.* Threat modelling, penetration-test management and incident response.* Security at consumer scale.* Reading and reviewing systems-language code, with Rust a plus.Process## How the process runs.Each application is reviewed directly. Expect one or more conversations covering judgement, technical or craft depth, and the responsibility the role carries. EvaEsi does not publish salary ranges in public material; compensation is discussed individually during the process.Team: EvaEsi SecurityType: Full-timeLocation: United KingdomDiscipline: SecurityWhat you will do* Lead security reviews and threat modelling across the platform.* Coordinate external testing and handle security reports.* Hold the launch security sign-off and the risk register.* Explain security clearly to engineers and non-engineers.* Work across authentication, API keys, billing, Studio, infrastructure and model tooling.#J-18808-Ljbffr…
